/32 subnet

Thomas Liske liske at ibh.de
Wed Feb 4 10:25:26 UTC 2009


Hi,

On Wed, 4 Feb 2009, Outback Dingo wrote:

> hrmm honestly, isnt this the same as AP separation on the AP itself?? using
> say

nope, AP client seperation is layer 2, this will give you some more 
protection. My layer 3 approach wouldn't prevent bad guys to change their 
subnet mask and send some malicious UDP pakets. But TCP connection 
wouldn't work, since the three-way-handshake would be blocked.

And you need an AP which support client separation. Whats 
about wired hotspots?


Regards,
Thomas



More information about the Chilli mailing list